Tuesday, June 2, 2020

ACL Under Role for Apple Devices

So Long story short customer wants an ssid to enroll Apple Devices to their AirWatch MDM solution.

Infrastructure is Aruba controllers and AP's A user role is assigned to the SSID with the following rules

Ipv4 any alias "airwatch" any permit Ipv4 any alias "apple-dep" any permit Ipv4 any svc-dhcp any permit Ipv4 any svc-dns any permit Ipv4 any any any deny_opt Ipv6 any any deny_opt

"AirWatch" consists of the following 169.50.27.128/25 169.50.26.36/32 169.50.26.37/32 *.awmdm.com *.awagent.com Air-watch.com

"Apple-dep" consist of the following 17.0.0.0/8

Still the iPad stalls and wants to have a passcode entered and cannot download the profile. Have i missed anything ?

Best regards



No comments:

Post a Comment